{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/vendors/weights--biases/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:wandb:wandb:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":8.8,"id":"CVE-2026-91771"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["wandb (\u003c 0.29.0)"],"_cs_severities":["high"],"_cs_tags":["vulnerability","path-traversal","python"],"_cs_type":"advisory","_cs_vendors":["Weights \u0026 Biases"],"content_html":"\u003cp\u003eWeights \u0026amp; Biases wandb versions prior to 0.29.0 contain a high-severity path traversal vulnerability in the File.download function. The library fails to validate filenames returned by server responses, allowing an attacker who controls the backend infrastructure to inject directory traversal sequences. By successfully manipulating the file path, the attacker can force the client-side wandb process to write files outside of the intended download directory. This creates a significant security risk, as the attacker may be able to achieve Remote Code Execution (RCE) by overwriting critical system files, such as shell configuration files (e.g., .bashrc, .zshrc) or files within Python site-packages that are loaded at runtime.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows an attacker to achieve arbitrary file writes on the host system. Depending on the environment, this can result in total system compromise, exfiltration of sensitive information, or the execution of malicious code under the context of the user running the wandb library. This vulnerability affects any data science or machine learning pipeline utilizing vulnerable versions of wandb to pull artifacts from a backend server.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade the wandb library to version 0.29.0 or later immediately to include path validation in the File.download function.\u003c/li\u003e\n\u003cli\u003eRestrict the use of untrusted or unverified backend servers for downloading artifacts via wandb.\u003c/li\u003e\n\u003cli\u003eMonitor local file system activity for unexpected file writes originating from Python interpreter processes.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-09-15T03:38:14Z","date_published":"2026-09-15T03:38:14Z","id":"https://feed.craftedsignal.io/briefs/2026-09-wandb-path-traversal/","summary":"The Weights \u0026 Biases wandb library before version 0.29.0 is vulnerable to path traversal via the File.download function, allowing an attacker-controlled backend to write files to arbitrary locations.","title":"Path Traversal in Weights \u0026 Biases wandb","url":"https://feed.craftedsignal.io/briefs/2026-09-wandb-path-traversal/"}],"language":"en","title":"CraftedSignal Threat Feed - Weights \u0026 Biases","version":"https://jsonfeed.org/version/1.1"}